Threat Level: green Handler on Duty: Johannes Ullrich

SANS ISC: Automation Software, Consultant or Both? - SANS Internet Storm Center SANS ISC InfoSec Forums


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Automation Software, Consultant or Both?
Does anyone have insight into a healthy ratio of manual vs. automated audit? I've experienced great service from my consultant partner Pivot Point Security (https://www.pivotpointsecurity.com/iso-27001/iso-27001-certification-process/) but I'm curious to hear experiences from people who have used more automated tools.

Any and all comments welcome, thanks!
Anonymous

IMHO both techniques are complementary... Start with automated tools to perform the boring tasks but results generated by such tools must be reviewed manually and cross-checked. Anonymous


ISC Handler

Sign Up for Free or Log In to start participating in the conversation!